Alerts This Week
Warning Icon 1 626
Alerts This Week
Warning Icon 1 626

Fedora 36: FEDORA-2022-e92c3ce170 Moderate: vim Heap Overflow Fix

fedora
Calendar Grey May 10, 2022
Dist Fedora Esm H88
Security bulletin for Fedora 36 vim update revision 4927 focusing on mitigating heap buffer overflow vulnerabilities and improving overall performance.
patchlevel 4927 Security fixes for CVE-2022-1616, CVE-2022-1619, CVE-2022-1619

Summary

VIM (VIsual editor iMproved) is an updated and improved version of the

vi editor. Vi was the first real screen-based editor for UNIX, and is

still very popular. VIM improves on vi by adding new features:

multiple windows, multi-level undo, block highlighting and more.

patchlevel 4927 Security fixes for CVE-2022-1616, CVE-2022-1619, CVE-2022-1619

* Mon May 9 2022 Zdenek Dohnal - 2:8.2.4927-1

- patchlevel 4927

* Mon May 9 2022 Zdenek Dohnal - 2:8.2.4877-2

- add new file vimhelp.vim

* Fri May 6 2022 Zdenek Dohnal - 2:8.2.4877-1

- patchlevel 4877

* Mon May 2 2022 Zdenek Dohnal - 2:8.2.4857-1

- patchlevel 4857

[ 1 ] Bug #2083017 - CVE-2022-1616 vim: heap-buffer-overflow in append_command of src/ex_docmd.c

https://bugzilla.redhat.com/show_bug.cgi?id=2083017

[ 2 ] Bug #2083026 - CVE-2022-1619 vim: heap-buffer-overflow in cmdline_erase_chars of ex_getln.c

https://bugzilla.redhat.com/show_bug.cgi?id=2083026

[ 3 ] Bug #2083029 - CVE-2022-1620 vim: NULL Pointer Dereference in vim_regexec_string() of regexp.c

https://bugzilla.redhat.com/show_bug.cgi?id=2083029

su -c 'dnf upgrade --advisory FEDORA-2022-e92c3ce170' at the command

line. For more information, refer to the dnf documentation available at

https://dnf.readthedocs.io/en/latest/command_ref.html

All packages are signed with the Fedora Project GPG key. More details on the

GPG keys used by the Fedora Project can be found at

https://fedoraproject.org/security/

package-announce mailing list -- package-announce@lists.fedoraproject.org

To unsubscribe send an email to package-announce-leave@lists.fedoraproject.org

Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/

List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines

List Archives: https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/

Do not reply to spam on the list, report it: https://pagure.io/fedora-infrastructure

Change Log

References

Update Instructions

Severity
important
Lowest
Low
Medium
High
Critical

Product: Fedora 36
Version: 8.2.4927
Release: 1.fc36
Summary: The VIM editor

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here